CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 25: HPE7-A10: HPE Network Security Expert

A customer has an AOS-10 architecture that is managed by HPE Aruba Networking Central. HPE Aruba Networking infrastructure devices authenticate clients to an HPE Aruba Networking ClearPass cluster. In HPE Aruba Networking Central, you are examining network traffic flows on a wireless IoT device that is categorized as…

Nội dung câu hỏi

A customer has an AOS-10 architecture that is managed by HPE Aruba Networking Central. HPE Aruba Networking infrastructure devices authenticate clients to an HPE Aruba Networking ClearPass cluster. In HPE Aruba Networking Central, you are examining network traffic flows on a wireless IoT device that is categorized as "Raspberry Pi" clients. You see SSH traffic. You then check several more wireless IoT clients and see that they are sending SSH also. Refer to the scenario. You are helping the customer assess ways to mitigate the potential threat you have detected. The customer recommends simply adding a rule that denies SSH traffic to the IoT client’s AOS user role. What is the security drawback of this option?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. It does not prevent the likely compromised clients from taking other harmful actions. — đáp án hiện tại
  2. B. It only applies to Layer 3 traffic, so it will not reliably prevent a man-in-the-middle attack.
  3. C. It penalizes the wireless IoT client instead of the ultimate source of the threat.
  4. D. It only prevents SSH traffic initiated from IoT clients, not initiated by a device on the other side of the firewall.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề